Security

Totsum Data Explorer performs no online update check. Each update and any security advisory is published on this page. You learn that a fix exists by checking here, or from the email sent to the address your key was issued to, whether for a purchase, a beta key or a trial key.

Report a vulnerability

If you believe you have found a security vulnerability in Totsum Data Explorer, email security@totsum.app. Reports to this address are read with priority over the general support channel.

What to include:

  • Your app version (shown in Help → About) and your OS.
  • Steps to reproduce, as precisely as you can.
  • Screenshots or logs if they help, after the check below.

Check them before you send them. Screenshots and logs can carry pieces of your data, such as table and column names, filter values, row counts and sample rows. If the data is confidential, make sure you are allowed to share what they show, or redact them first. A plain description of the steps can be enough.

Please give us reasonable time to fix it before publishing details.

Security advisories

Advisories are published on this page, newest first. Each entry lists the date, the affected versions, the version that fixes the issue, and what you need to do.

No advisories have been published to date.

Security updates and supported versions

There is no automatic update. A fix arrives as a new installer. You download it from the download page and install it over your existing version. Any updates we release for your major version are free. Where we hold an email address for your licence, whether for a purchase, a beta key or a trial key, we also email you about updates addressing a security issue or a lack of conformity. What else we write to you about is in the privacy policy, in one screen.

VersionSupported until
1.xThe support period is published before sales open, and its end date is shown before you buy.

This policy is also machine-readable at /.well-known/security.txt (RFC 9116).